18 June 2012

blok ip yg coba masuk pake ssh ke mikrotik

/ ip firewall filter

add chain=input protocol=tcp dst-port=22 src-address-list=black_list action=drop |
comment="drop ssh brute forcers" disabled=no

add chain=input protocol=tcp dst-port=22 connection-state=new |
src-address-list=ssh_stage3 action=add-src-to-address-list address-list=black_list address-list-timeout=1d |
comment="" disabled=no

add chain=input protocol=tcp dst-port=22 connection-state=new |
src-address-list=ssh_stage2 action=add-src-to-address-list address-list=ssh_stage3 address-list-timeout=1m |
comment="" disabled=no

add chain=input protocol=tcp dst-port=22 connection-state=new |
src-address-list=ssh_stage1 action=add-src-to-address-list address-list=ssh_stage2 address-list-timeout=1m |
comment="" disabled=no

add chain=input protocol=tcp dst-port=22 connection-state=new |
action=add-src-to-address-list address-list=ssh_stage1 address-list-timeout=1m comment="" |
disabled=no

sumber : http://www.forummikrotik.com/beginner-basics/553-%5Bask%5D-blok-ip-yg-coba-masuk-pake-ssh-n-telnet.html